Guests Waiters Reception Restaurant Pricing FAQ Get started

Data Processing Terms

These Data Processing Terms (the "DPT") apply whenever Menew processes personal data on behalf of a restaurant using the platform. They form part of the Terms of Service and are accepted with them. Where the two conflict on the handling of personal data, this document wins.

1. Roles

For personal data about your diners, your staff and your bookings, you are the controller and Menew is your processor. You decide why and how that data is processed; we act on your instructions.

For personal data about your account with us — your name, your email, your billing history — Menew is the controller, and the Privacy Policy governs it rather than this document.

2. Scope of processing

3. Our instructions

We process personal data only:

We will not:

If we consider an instruction of yours to breach applicable data-protection law, we will tell you and may decline it.

4. Confidentiality

Anyone we authorise to process your data is bound by a duty of confidentiality that survives the end of their engagement, and is given access only to what their role requires.

5. Security measures

We maintain technical and organisational measures appropriate to the risk, including:

We may change these measures, provided the level of protection is not reduced.

6. Your obligations as controller

You are responsible for:

7. Sub-processors

You give us general authorisation to engage sub-processors. Our current list is maintained in the Privacy Policy and is, at the effective date of this document:

We will give you at least 30 days' notice before adding or replacing a sub-processor that processes personal data. If you reasonably object on data-protection grounds within that period, we will work with you to find an alternative; if we cannot, you may terminate the affected part of the service without penalty and receive a refund of the unused prepaid portion.

We remain responsible to you for what our sub-processors do.

8. International transfers

Personal data is stored in the European Union. Where a sub-processor processes data outside the EU, that transfer is covered by the European Commission's Standard Contractual Clauses or an equivalent safeguard.

9. Helping you answer data subjects

If a diner or a member of your staff contacts us directly with a request about their data, we will not answer it ourselves — we will refer them to you and tell you promptly.

We will give you reasonable assistance in answering access, correction, deletion, objection, restriction and portability requests, using the tools in your console where they cover it. Where they do not, write to support@menew.io and we will help.

We will also give you reasonable assistance with data-protection impact assessments and with consultations with a supervisory authority, so far as they relate to Menew.

10. Breach notification

If we become aware of a personal data breach affecting your data, we will notify you without undue delay and in any event within 72 hours, with:

We will not wait until we have a complete picture to tell you. Notifying the supervisory authority and the affected individuals is your decision as controller; we will give you what you need to make it.

11. Audit and information

On reasonable written request, and no more than once a year unless a breach or a regulator requires otherwise, we will provide the information reasonably necessary to demonstrate our compliance with this document.

We are a small company. An on-site audit is available where a supervisory authority requires one, at your cost, on 30 days' notice, subject to confidentiality, and arranged so as not to disrupt the platform or expose another customer's data.

12. Return and deletion

You can export your data from your console at any time while your subscription is active.

On termination, and if you ask within 30 days, we will provide a machine-readable export at no charge. After that window we delete your personal data from live systems.

Backups. Deletion is applied to live data immediately. Backups containing the data expire on their own rolling cycle rather than being individually edited — editing a backup would defeat what a backup is for. Data in an expiring backup is not accessed or used for anything, and expires in the ordinary course.

We may keep data where a law requires it — billing records for tax purposes, for example — and only for as long as it requires.

13. Liability

The limitation of liability in section 12 of the Terms of Service applies to this document, except where applicable data-protection law does not permit it.

14. Changes

We may update this document to reflect a change in law or in how the platform works. Material changes come with at least 30 days' notice by email. Every version carries a version number and an effective date.